Browse all 10 CVE security advisories affecting seventhqueen. AI-powered Chinese analysis, POCs, and references for each vulnerability.
SeventhQueen develops WordPress themes and plugins for website creation, with a core use case of providing customizable templates for businesses. Historically, their products have been associated with multiple remote code execution (RCE) vulnerabilities, cross-site scripting (XSS) flaws, and privilege escalation issues, contributing to their 10 CVEs. Security researchers have noted consistent problems with insufficient input validation and improper access controls in their codebase. While no major public security incidents have been documented, the recurring nature of these vulnerabilities suggests systemic security weaknesses in their development practices that require remediation to prevent future compromises.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-22465 | WordPress BuddyApp theme <= 1.9.2 - Reflected Cross Site Scripting (XSS) vulnerability — BuddyAppCWE-79 | 7.1 | High | 2026-03-05 |
This page lists every published CVE security advisory associated with seventhqueen. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.